首页> 外文会议>IEEE Annual Computer Software and Applications Conference >Static Analysis of HIPPA Security Requirements in Electronic Health Record Applications
【24h】

Static Analysis of HIPPA Security Requirements in Electronic Health Record Applications

机译:电子病历应用中HIPAA安全要求的静态分析

获取原文
获取外文期刊封面目录资料

摘要

Electronic Health Records (EHRs) are digital versions of paper-based patient's health information. EHR applications are increasingly being adopted in many countries. They have resulted in improved quality in healthcare, convenient access to histories of patient medication and clinic visits, easier follow up of patient treatment plans, and precise medical decision-making process. EHR applications are guided by measures of the Health Insurance Portability and Accountability Act (HIPAA) to ensure confidentiality, integrity, and availability. However, there have been reported breaches of Protected Health Identifier (PHI) data stored by EHR applications. In many reported breaches, improper use of EHRs has resulted in disclosure of patient's PHI data. Inefficient application design threatens the integrity of EHRs, which leads to fraud and endangering patient's health. The goal of this paper is to identify HIPAA technical requirements, evaluate an open source EHR application (OpenEMR) for security vulnerabilities using an open-source scanner tool (RIPS), and map identified vulnerabilities to HIPAA technical requirements.
机译:电子健康记录(EHR)是纸质患者健康信息的数字版本。在许多国家,电子病历的应用越来越多。他们提高了医疗质量,可以方便地获取患者用药和门诊的病史,可以更轻松地跟进患者治疗计划,并可以进行精确的医疗决策过程。 EHR的应用遵循《健康保险可移植性和责任法案》(HIPAA)的措施,以确保机密性,完整性和可用性。但是,据报告,违反了EHR应用程序存储的受保护健康标识符(PHI)数据。在许多报告的违规事件中,EHR的不当使用导致了患者PHI数据的泄露。低效的应用程序设计威胁到EHR的完整性,从而导致欺诈并危害患者的健康。本文的目的是确定HIPAA技术要求,使用开放源代码扫描程序工具(RIPS)评估开放源代码EHR应用程序(OpenEMR)的安全漏洞,并将已标识的漏洞映射到HIPAA技术要求。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号